General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1791 Views
  • 0 replies
  • 0 Likes

New to Palo Alto

Hi all

I am a firewall engineer and I am completely new to Palo Alto firewalls. Would any of you be able to recommend any training, certification I should start with?

 

Thank you in advance. 

 

M

cve-2009-3555

Hello

 

When scanning management interface or enabled https layer3  interface it shows the related vulnerability,

 

is there a way to fix.version is 6.1.10

 

https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3555”

 

thanks.

 

PanIst by L3 Networker
  • 3022 Views
  • 2 replies
  • 0 Likes

Custom DNS name

We have a DNS name genieo that is not being recognized and is not included in the signatures. Two things first is there a way to identify it with a custome signature with the object/anti-spyware  and then be able to send it to a sinkhole?

jdprovine by L4 Transporter
  • 4546 Views
  • 10 replies
  • 0 Likes

Related with QoS...

Hi,

I'm trying to understand a QoS functionality, let's see if anyone can help on this case.

I have a webserver on a DMZ and want to asure 15Mb from inside to outside, that is, in case of congestion in DMZ, priorize the Http traffic (respond http reque...

ilnanu by L1 Bithead
  • 6468 Views
  • 8 replies
  • 0 Likes

FTP connections jumping rule

Hi,

 

we have 2 rules. the first one filtering by application FTP 

and the second one with the same source/destination like the rule above and using any/any permit.

 

We run ftp connections. all these FTP connections should match in the first rule fi

...

Captura1.JPG
Capturasegunda.JPG

Policy for AD authentication across zones

Trying to narrow it down and determine the minimum set of applications/services that need to be allowed for a user to login into a Windows 7 client in one zone and authenticate against a Server 2008R2 AD Domain Controller in a different zone? The Win

...

Port 4443

It has been noted that our global protect portal is reachable from the internet using port 4443 and is presenting a self signed cert which is seen as a security vulnerability. Can you let me know if port 4443 is necessary in terms of GlobalProtect co

...

Resolved! Changing Profiles assigned to security Rule

just in the process of switching to a vulnerability profile which is not shared to vsys specific vulneability profile. Is there an easy way to change a vulnerability profile in 250 security rules without having to manually visist every rule?

clewis1 by L3 Networker
  • 7360 Views
  • 3 replies
  • 0 Likes

Resolved! PAN-DB License not active

Hi guys,

 

Applied two licenses to my devices in HA for a one months extension for PAN-DB URL filtering. I applied it to the passive first successfully (shows as active), but now the current active doesn't have an active URL license.

 

I have followe

...

Palo Alto Training Partner

Hello Community,

 

We're thinking of becoming a Palo Alto Training Partner. Can someone please let know the process in becoming a training and partner and any links.

 

Regards

Manage users connected to wire from layer 3

Hello i need for you help.

 

The client has device connected in virtual wire mode and wants to configure another interface on the device that will connect to your LAN where their servers are and can see users who connect to the virtual wire mode.

 

T

...

Resolved! ECMP and circuit load

I have not been able to find an answer to this in the searching I have done. Does ECMP take into account the current load on the paths before choosing a path? We are using 'balanced round robin' on our metro-e links between locations, we have two pro

...

ldavie by L2 Linker
  • 3186 Views
  • 2 replies
  • 0 Likes

Resolved! Unable to access a site, please try for me

I am unable to access this site in any way throuth my PA 3020 With Pan Os 7.1
Obviously is possible through a direct connection
Can someone try and temm me if is the same ?

https://www.spcconnect.com/

 

nicolap by L1 Bithead
  • 6351 Views
  • 10 replies
  • 0 Likes
  • 24243 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels